spaww.nl
HTML metadata
Technology
- Server
- Apache
- Stack
- PHP
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (4)
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns.zxcs.be
- ns.zxcs.eu
- ns.zxcs.nl
- MX
-
- 0 spaww-nl.mail.protection.outlook.com
- 20 ms82683748.msv1.invalid.spaww.nl
- TXT
-
Show 15 TXT records
wrx8lgqxqxzqmknvhr0q2jj6x9p4gsntwxbc8fvkj1lmwcv2q0vg2679mzn0x2kq_tmsvmsm6gvkyhvc83qb2dxcu2vir6yaspaww-website.azurewebsites.net_re2ykwfnrk1bnrnbetmoj3xec9her3js9qyk96x70757c9hlpg9b79418s08wtps38tpvrk6n39byhm6lqk7lgzfmj4pz71jc9gx0m29cvz34z2h5j9p7v0hk637qhgh39fnyfm31tnl2q71fy065771vhk6hsw_svmsm6gvkyhvc83qb2dxcu2vir6yagss7k9ny30cr617d0ngrwt1dbj54qk56_5oah8otspn2kc8c17z48r43kszzz66ews68rsflsxwvcr78m7yfd4mynxlcqz00_9jfggzkcyv5h2nwgx9kdu649lezchrz_sr10dgw6s8n4uszcu3rc6rrxvg0w2fm
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.mandrillapp.com include:mailgun.org include:mailswitch.nl +ip4:87.253.239.92 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; rua=mailto:ladislav.wagner@visma.com; ruf=mailto:ladislav.wagner@visma.com;policy: none (monitoring only) · sp=none - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxmDYq5ftfioGgQXfRCy/p0yarIIwO4yYDkF+uMJarzsu/vUT2knh+dKgCS17xxWbHco/sunWuCSiLz8nRz… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDhSqPJU1qX7FBr6jnD0eaZgX3H3sSvusUF9IoW6KvfPA6QjT8g6W4mKBATNGvkpDXseaj/P5AXSd5MoMKG7E7GPk…
selectors probed - s1:
Certificate (current)
Trust Provider B.V. TLS RSA CA G1
Expires in 267 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * data: 'unsafe-inline' blob:; frame-ancestors 'self' https://goflo.nl https://www.youtube-nocookie.com; img-src * data: blob:- strict-transport-security
max-age=31536000; preload